Configuring Ldaps Authentication With Active Directory; Troubleshooting Guide - Nortel 3050 Troubleshooting Manual

Vpn gateway
Hide thumbs Also See for 3050:
Table of Contents

Advertisement

4

Configuring LDAPs authentication with Active Directory

LDAP is used to communicate with a directory server. There are
many directory servers available in the market that uses LDAP for
communication, like Novell NDS or e-Directory, Sun ONE Directory Server,
OpenLDAP, and also Microsoft Active Directory.
A directory server is a structured tree where not only user information but
other related information can be stored. Different branches build up each
directory tree and on each branch there is one or multiple attributes, each
attribute can have one or multiple values. Each branch in the directory tree
has it's own unique identifier or distinguished name. The distinguished
name is built from the root including all the branches.
When you configure the SSL VPN gateway for LDAP authentication one
of the key parameter to configure is the searchbase. The searchbase
instructs the SSL VPN gateway where, in the directory tree, it would
start searching for the user attribute. The user attribute or userattr
indicates which attribute contains the user name. Once the searchbase is
configured, you need to configure the group attribute or groupattr, which
indicates that the group mapping in the SSL VPN configuration. With
the directory tree looking the way it does above the searchbase would
be "OU=Users,DC=Nortel" the userattr would be "UID" and finally the
groupattr would be "GID".
Procedure steps
Step
1
2
Copyright © 2007 Nortel Networks
.
Configuring LDAPs authentication with Active Directory 41
Click OK to activate the changes.
In the directory tree the attributes appears and are use-able by
the SSL VPN gateway when querying for the group attribute
Action
Configure LDAP as shown in the section
gateway user into the Active Directory" (page 38)
Enable LDAPS support on the SSL-VPN.
/cfg/vpn 1/aaa/auth 3/ldap/enaldaps true
Nortel VPN Gateway

Troubleshooting Guide

NN46120-700 01.01 Standard
12 October 2007
--End--
"Adding a SSL VPN

Advertisement

Table of Contents

Troubleshooting

loading

This manual is also suitable for:

3070

Table of Contents